How Remoteville checks and expires listings
Security and Compliance Lead
Skills
Cyber-SecurityCybersecurityDocumentationEngineeringFedrampNIST 800-53Readiness
What the job involves
The main requirements, responsibilities and hiring steps.
Requirements
- 7+ years in security roles with both compliance and technical responsibilities
- Deep knowledge of NIST 800-171 NIST 800-53 Rev 5 CMMC 2.0 FedRAMP and ITAR
- Experience supporting third-party assessments such as C3PAO 3PAO or FedRAMP JAB/Agency
- Hands-on skills with scripting Terraform and troubleshooting access issues
- Cloud security experience securing GCP preferred and AWS GovCloud environments
- Experience with enterprise IAM platforms such as Okta or Azure AD
- Strong documentation skills for auditor-ready policies and engineer-facing guides
- Strong communication skills with auditors executives government customers and authorizing officials
- Ability to interpret and implement NIST 800-53 controls in cloud environments
- Working knowledge of CMMC FedRAMP and DFARS overlapping requirements
- Experience building or significantly maturing a compliance program
- U.S. Citizenship required
Nice to have
- Fast-paced
- Collaborative
- Adaptable
- Detail-oriented
- Mission-driven
Day to day
- Own end-to-end government compliance efforts for CMMC L2 and FedRAMP High, including gap analysis remediation tracking evidence collection and assessment coordination
- Maintain DFARS ITAR EAR and related federal cybersecurity obligations while managing SPRS score and supplier requirements
- Implement and harden technical security controls across cloud and enterprise environments build automation for reporting and support engineering with actionable guidance
